Vulnerabilities / Threats
12/20/2010
02:15 PM
Connect Directly
RSS
E-Mail
50%
50%

Microsoft Overhauls Free Antivirus Software

Firewall integration, a better heuristic antivirus scanner, and network traffic inspection added to Microsoft Security Essentials 2.0.

Microsoft Internet Explorer 9 Beta Revealed
Slideshow: Microsoft Internet Explorer 9 Beta Revealed
(click image for larger view and for full slideshow)
Without fanfare, on Thursday Microsoft released version 2 of its Microsoft Security Essentials (MSE) antivirus software. The software is free for individuals and small businesses with up to 10 PCs.

The new version of the software, which recently went through a four-month beta program, now has an overhauled heuristic antivirus scanning engine, integration with Windows Firewall, and network traffic inspection for Windows Vista and 7 -- but not XP -- reported Ars Technica.

On Thursday, Microsoft also announced that the not-free Forefront Endpoint Protection 2010 -- aimed at larger corporate users -- would be available from January 1, 2011. Forefront offers similar functionality to MSE, as well as centralized administration.

According to internal Microsoft research, 80% of PC users in the United States think their antivirus software is up to date. But in reality -- thanks to outdated signatures or lapsed trials -- only about 40% of Windows users are employing up-to-date antivirus software.

Why, then, wasn't there more fanfare for the latest version of a free antivirus program that's earned plaudits? The United Kingdom's PC Pro magazine said the stealth release might have to do with the software looking less like its previous, standalone antivirus scanner incarnation, and more like the security software offered by the likes of Symantec and McAfee. With MSE 2, according to PC Pro, "users are now asked whether they want to turn on the Windows Firewall during installation, dragging Security Essentials closer to becoming a full-fledged security suite."

Microsoft has recently come under fire from some antivirus firms for apparently muscling onto their turf. In November, after Microsoft began automatically installing MSE onto PCs that lacked antivirus software, Trend Micro slammed Microsoft on competitive grounds.

In a similar vein, Panda Software blogged that Microsoft was threatening PC users by creating an antivirus monoculture. According to Panda, "Microsoft should offer the complete portfolio of more advanced and secure alternatives of free antivirus products and time-limited versions of paid security suites, allowing users to choose any of them from the Optional Windows/Microsoft Update." Microsoft doesn't appear to have pursued this strategy.

Interestingly, Microsoft's release of MSE 2 comes on the heels of a new study from German AV vendor Avira, which found widespread dissatisfaction with antivirus. According to the survey of more than 9,000 Avira users, 25% of antivirus users admit to pulling the plug on their antivirus software -- at least temporarily -- because it appeared to be slowing their computer. Furthermore, nearly two-thirds of respondents have tried multiple security products on their PC in the past year.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Flash Poll
Current Issue
Cartoon
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-2227
Published: 2014-07-25
The default Flash cross-domain policy (crossdomain.xml) in Ubiquiti Networks UniFi Video (formerly AirVision aka AirVision Controller) before 3.0.1 does not restrict access to the application, which allows remote attackers to bypass the Same Origin Policy via a crafted SWF file.

CVE-2014-5027
Published: 2014-07-25
Cross-site scripting (XSS) vulnerability in Review Board 1.7.x before 1.7.27 and 2.0.x before 2.0.4 allows remote attackers to inject arbitrary web script or HTML via a query parameter to a diff fragment page.

CVE-2014-5100
Published: 2014-07-25
Multiple cross-site request forgery (CSRF) vulnerabilities in Omeka before 2.2.1 allow remote attackers to hijack the authentication of administrators for requests that (1) add a new super user account via a request to admin/users/add, (2) insert cross-site scripting (XSS) sequences via the api_key_...

CVE-2014-5101
Published: 2014-07-25
Multiple cross-site scripting (XSS) vulnerabilities in WeBid 1.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) TPL_name, (2) TPL_nick, (3) TPL_email, (4) TPL_year, (5) TPL_address, (6) TPL_city, (7) TPL_prov, (8) TPL_zip, (9) TPL_phone, (10) TPL_pp_email, (11) TPL_authn...

CVE-2014-5102
Published: 2014-07-25
SQL injection vulnerability in vBulletin 5.0.4 through 5.1.3 Alpha 5 allows remote attackers to execute arbitrary SQL commands via the criteria[startswith] parameter to ajax/render/memberlist_items.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Sara Peters hosts a conversation on Botnets and those who fight them.